Skip to content

Conversation

@ziomio
Copy link

@ziomio ziomio commented Apr 12, 2019

Previous version of azure-storage dependency (0.11.5.preview) used nokogiri gem (version ~> 1.6.0) that has multiple serious security vulnerabilities:

This PR updates azure-storage dependency to version 0.12.2.preview that dropped nokogiri dependency at all, therefore eliminating a problem.

@ziomio ziomio changed the title Updated azure-storage dependency Updated azure-storage dependency Apr 12, 2019
@robikovacs robikovacs mentioned this pull request Feb 14, 2020
Copy link

@radlero radlero left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Let's merge this, please 👍

@robikovacs
Copy link

@ziomio Can you please assign a maintainer to this PR? They don't seem to reply.

@lfnascimento
Copy link

lfnascimento commented May 27, 2020

Hi!

Why hasn't this PR been merged yet? I'm having the same dependency issue which this PR fixes.

I'd really appreciate it if you guys could merge this PR ASAP.

Thanks in advance.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

4 participants